Sign inSign up
Cassandra

dhi.io/cassandra

Cassandra 5.0.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

5-debian-fips-dev, 5-debian13-fips-dev, 5-fips-dev, 5.0-debian-fips-dev, 5.0-debian13-fips-dev, 5.0-fips-dev, 5.0.9-debian-fips-dev, 5.0.9-debian13-fips-dev, 5.0.9-fips-dev

Index digest:

sha256:bcf91c7218507b910001cda6b9588aa349122ec46cc8cb4c5e2063d01b17a8f0

Manifest digest:

sha256:6eea260cc056b768033495fcfdf00a877ca309c64f5ff48251bca3e2ea7665f2

Size

249.25 MB

Last pushed

15 hours ago

Vulnerabilities

0
5
4
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cassandra:5-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cassandra:5-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cassandra@sha256:fa8c225ea578e79e5a95f7c5b265aabc4dfc14ec8f33d9ee121074b96cebbd67
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cassandra@sha256:73df931bbf4e350ac4ba63745a0fe1addd11d5d061dfdf76a3149f65bd67e696
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/cassandra@sha256:f4407c8b90874e31684d9b8370bd1d8aa890aab2811f5c12d49c3ad4bc4281f9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cassandra@sha256:1677d775ad633676ee64cff0091866da9325e9665fd63c8b4fbf854b55a2f2aa
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/cassandra@sha256:84aadd1c7852e3a724c2a6b96a1b2b65f54e244b1c1d23af746adf8aa9171c8d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cassandra@sha256:334419d696079ef21904047acf2d94ef1dc3daac05af20b6393c1f16ac4174ca
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cassandra@sha256:6ddb1f9bc269f09d421f7e8fc9e2f9b7676c7f44c73e4b847fa8f9a5286b15a8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cassandra@sha256:d40a826efe3736740d660af8c6aff2d10e868d907a3cb50d50ce0302ea85f532
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cassandra@sha256:dded5f5f6e797ddf89679be6bd2bec0b9559e1a9cb463150f7e3840dac4e97bb
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cassandra@sha256:055ccfcf53df91736f7e78614a6997c29b457449c972c66b1a8e0623610e447d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cassandra@sha256:e7b0ef43d56c61e85f55b143d49b10e4e0d7346c873d451e840adabc0a82eec1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cassandra@sha256:69f4398abb11e5ea8e6edba9080989d2ea5f45d48c80aaf5221680d75312e09a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cassandra@sha256:6eb3072a1a72f24fc3cfb2ab90b6cd37a5fb07a8d91545a71ef5ba7633b341d5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cassandra@sha256:bcc53b2911354221f90018c5275680cc9a65dc27cdf5d8157080c17bd5a506e7
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cassandra@sha256:4c3a94d21869d6b963626a5451eab48472934d29753c49ea83b15fa9789ece54
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cassandra@sha256:137443aef04167f1310dcf1e9caa43d6c247518e42ddd70cfd9c00c6ad51e13a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cassandra@sha256:e6dea6fe945ffcd173f4dbcebf5011a34afe723fc15f124c4ade2bb8040e9517